How Frontier Model Agents Accidentally Do Offensive Security
OpenAI - Hugging Face - Model evaluation security incident

Search for a command to run...
OpenAI - Hugging Face - Model evaluation security incident

I was working on a new app and came across Matt Pocock's /grill-with-docs skill that works as a structured interrogation tool that stress-tests your plan against your project's domain model, cross-ref

Building a normalised finding schema across six scanners and an MCP layer that lets developers, security engineers, and CI pipelines query, fix, and verify vulnerabilities, all from the tools they already have open.

Why the assumption that CI/CD is a trusted internal tool has already cost organisations dearly

Part 1 - Lab setup, attacker simulation, and finding exploitable misconfigurations

Securing AI: Microsoft Shares Key Research Findings

EU Cyber Resilience Act Explained by a Cybersecurity Professional

Introduction Application security was supposed to be a safety net. Lately, it feels more like quicksand. Modern AppSec teams are swamped by an endless stream of alerts. The report found on thehackernews.com prompted me to think about this issue (http...

Identify and manage security risks in software architecture
